System and method for transmitting data via data networks with data conversion by a com automatic marshaller

ABSTRACT

The invention relates to a system and a method for transmitting data via data networks, especially via the Internet. The aim of the invention is to create a bi-directional data connection even behind firewalls, via Internet in both directions, including from a client ( 1 ) not visible as a server in the Internet. To this end, the invention provides a method or a system in which a first connection request for establishing a first transmission channel ( 6   a   , 7   a   , 8   a ) is sent to a server ( 4 ) of an automation system ( 5 ) from a first data processing device ( 1 ) of a client ( 1 ) via a data connection ( 6, 7, 8 ). This request is answered by the server ( 4 ) via a second transmission channel ( 6   b   , 7   b   , 8   b ). The data connection ( 6, 7, 8 ) is kept permanently open, hereby allowing mutually time-independent bi-directional sending and receiving of data between the client ( 1 ) and the server ( 4 ), via at least one data network, especially via the Internet. A COM automatic marshaller which incorporates itself into the communications chain between the client ( 1 ) and the server ( 4 ) is provided.

[0001] The invention relates to a system and to a method for transmitting data via data networks, especially the Internet, with asynchronous data connection.

[0002] With the help of data networks, it is possible to set up a data connection to a server from any computers, so-called clients, which have access to these data networks. This applies particularly to the World Wide Web (WWW), which is also referred to as the Internet. The terms Web or Internet server and Web or Internet client used below serve to clarify the association with the special data network, the Internet, but are not functionally different than the meaning of the terms client or server, which are used for all possible data networks.

[0003] On the Internet, a data connection is set up to a so-called Web or Internet server. Access to an Internet server takes place, for example, with the help of known Internet browsers, e.g. Internet Explorer from the company Microsoft or Netscape Communicator from the company Netscape. When setting up a data connection from a so-called Web or Internet client, a so-called request is made to an Internet server by entering and sending off a so-called URL address. When a data connection is established, the Internet server called replies with a so-called HTML page (HTML=Hyper Text Markup Language), also known as a Web page. The so-called Web clients communicate with the Web servers by means of transport protocols. Each data connection between Web client and Web server is based on a so-called request protocol, and, as a response to this, a so-called response protocol.

[0004] The invention is based on the object of specifying a system and a method for transmitting data via data networks, especially the Internet, which enables a time-independent bidirectional transmission of data, especially of any Com interfaces, between two data processing devices that can be coupled to data networks, especially the Internet, even behind data protection devices, in particular firewalls.

[0005] This object is achieved by a method and by a system with the characteristics specified in claims 1 and 15 respectively.

[0006] The technical problem to be solved is explained in more detail below: in the world of COM (=Component Object Modeling), callbacks play a central role. The procedure here is that a client allocates a task to a server and, at the same time, provides it with a so-called callback interface. By means of this callback interface, the server can then asynchronously send back intermediate reports (progress information) or the like or else completion of the task to the clients without the client having to wait for this (or even having to ask for this=polling). (See FIG. 3b). On the Internet, the communication proceeds according to a request response process: a client makes a request, which is replied to with a response. (Comparable with a function call) (see FIG. 3a). Asynchronous callbacks are therefore not possible via the Internet. An arbitrary extension of the HTTP protocol would be detected by established firewalls as a misuse and rejected.

[0007] Whenever this problem has occurred, it has until now been necessary to resort to polling, i.e. the client demands new data from the server at regular intervals.

[0008] With the subject matter of the present invention, a COM automatic marshaller is created using a “bidirectional HTTP communication”, which marshaller is incorporated in the communications chain between client and server (as in DCOM). The automatic marshaller interprets the call to be carried out, transmits the data relevant to the call with the help of the abovementioned communication to the server, which then carries out the actual call. By means of the communication channel created, callback interfaces (more exactly calls from the server to a callback interface at the client) can also be transmitted transparently (see FIG. 4).

[0009] A particular advantage lies in the fact that, due to the connection of the automatic marshaller and the bidirectional HTTP communication, it becomes possible to transfer “any” COM interfaces via the Internet. In the past, it was is only possible to transmit special interfaces with the help of the HTTP communication, but a special proxy and stub code then had to be written for these.

[0010] Depending on the specification, the automatic marshaller can only support automation (i.e. derived from IDispatch) or only custom interfaces, or both.

[0011] With data transmission via the Internet or with bidirectional HTTP communication, the first thought is to an HTTP transport protocol, but other (Internet) transport protocols such as, for example, FTP are, of course, also conceivable and possible and are likewise part of this application. Checking for valid use of the HTTP protocol on the Internet lies with the firewalls. Explicit reference is made to the fact that a central advantage of this invention is the possibility of communicating bidirectionally even beyond firewall limits. In spite of this, intranet naturally also lies within the scope of the proposed solution.

[0012] The invention is based on the further knowledge that a genuine “active” data connection to a client that is not visible on the Internet is not possible with the help of the Internet but only a data connection between any client connected to the Internet and any server that is visible on the Internet. This disadvantage is solved in a surprisingly simple manner by a first transmission channel being set up first of all from the client to the Internet server of an automation system. For this purpose, a first connection request is transmitted to the Internet server of the automation system from the client, which, after establishing the bidirectional data connections, can act as a fully functioning control and monitoring system for the automation system. The Internet server replies to this connection request and, in order to hold this data connection permanently open, the Internet server transmits apparent data to the client, for example, even when user data are not available, or transmits information to the client, which informs the client that a transmission of user data is still intended. Here, apparent data are data that are generated by the server itself and are transmitted to the client for the purpose of maintaining the data connection. By this means, a permanently open data connection is installed, via which the Internet server and thus the automation system can asynchronously transmit data to the client, and thus to the C&M system, at any time and independently of actions by the client.

[0013] Independently of and in parallel with this, client and Internet server can also communicate with one another conventionally on the Internet by the client directing a new request to the Internet server in each case, which is replied to by the latter with an appropriate response.

[0014] A system of mutually independent data connections is thus available, by means of which both the client, i.e. the C&M system, and the automation system can communicate with one another on their own instigation. Functionally, a bidirectional data connection is ensured between client and server or, in other words, between control and monitoring system and automation system, which in particular also enables data to be transmitted from the server to the client, as the server is continuously connected to the client by means of a permanently open transmission channel so that bidirectional data transmission between client and server, which is mutually independent with respect to time, is enabled. A data connection of this kind is particularly suitable for controlling and monitoring an automation system, the client being able to function as a control and monitoring system, which can be activated from any computer that is connected to the Internet. In contrast with conventional Internet data connections, an asynchronous data transmission process is thus produced, which does not demand of the client the need to be visible on the Internet or to have a so-called Web Server installed (IIS=Internet Information Server). By this means, it is possible to set up a bidirectional data connection to a server from any location in the world, in front of and behind data protection devices, in particular firewalls. As the data connection is activated from the client, i.e. from the C&M system, it is not necessary for the server to actively set up a data connection to the client on its own instigation. Furthermore, a change to the configuration of the client is also unnecessary.

[0015] Permanent maintenance of a data connection can be ensured by transmitting apparent data in order to maintain at least one transmission channel even when user data are not available.

[0016] A particularly advantageous embodiment of the invention is characterized in that the apparent data are transmitted from the server to the client. In doing so, it has been shown to be particularly advantageous that, when user data are not available, apparent data are transmitted from the server to the client every 25-35 sec. in order to keep the data connection open.

[0017] A further advantageous embodiment of the invention is characterized in that, in order to maintain a permanent data connection, in particular a transmission channel between server and client, the server transmits information to the client, which informs the client that a transmission of data is intended.

[0018] A further advantageous embodiment of the invention is characterized in that, in order to permanently maintain a data connection, in particular a transmission channel between server and client, by means of which quantities of data up to a defined size are transmitted from the server, a request for a new connection demand is transmitted from the server to the client before the defined quantity of data is reached and, after this, a new request for a connection for setting up at least one new transmission channel is transmitted from the client to the server. A size of 15-25 MB for the quantity of data to be transmitted via a transmission channel has been shown to be very advantageous, as this improves the performance or the response times of the system outstandingly on account of the communication beyond firewall computers and thus the cost/benefit ratio is at its most effective.

[0019] A further advantageous embodiment of the invention is characterized in that a transport protocol, in particular an Internet transport protocol, is provided for controlling the data transmission. At the same time, the use of the Hypertext Transport Protocol (HTTP) as a transport protocol has been shown to be particularly advantageous, as its use is exceptionally easy and the adaptation effort is very low.

[0020] A particularly advantageous application of the invention using existing infrastructures, in particular Internet infrastructures, for a bidirectional transmission of data consists in the method for controlling and monitoring an automation system, for example, being provided via at least one data network, in particular via the Internet, as, by this means, remote diagnostics, for example, can be implemented very easily, as a result of which the analysis of faults that occur and their rectification in ongoing operation of automation systems, for example, that are spatially far away from one another can be carried out cost effectively.

[0021] A further advantageous embodiment of the invention is characterized in that the client does not have to be visible on the Internet or does not have to have an Internet Information Server (IIS) installed.

[0022] A connection of the automation and communication equipment can be made in a simple manner in such a way that the control and monitoring system of the client initiates the provision of at least one transmission channel as a distributed object, in particular as a DCOM object, and that the connection to the automation system is set up via a DCOM server.

[0023] The invention is described and explained in more detail below with reference to the exemplary embodiments shown in the figures.

[0024] In the figures:

[0025]FIG. 1 shows a block diagram of one exemplary embodiment of an automation system with Internet coupling for control and monitoring,

[0026]FIG. 2 shows a schematic time-related diagram for possible user data communication between client and automation system,

[0027]FIG. 3a shows a schematic outline diagram for an HTTP request-response model,

[0028]FIG. 3b shows a schematic outline diagram for a COM callback scenario and

[0029]FIG. 4 shows an outline diagram for two data networks that can be coupled via the Internet.

[0030]FIG. 1 shows an exemplary embodiment of a system for controlling and monitoring automation systems 5, which, for example, feature programmable logic controllers (PLCs), numerical controllers (NCs) and/or drives. The system has a control and monitoring system 1 (C&M client), which is connected to a firewall computer 2 via an internal data network 6, e.g. Ethernet. The control and monitoring system 1, which in the following is also referred to as the C&M system 1 by way of abbreviation, has assigned to it a local intranet address, which does not have to be known on the Internet. The firewall of the firewall computer 2 is indicated in FIG. 1 with the help of the line 9 a, which encloses the internal communication network 31 (=intranet 31) of the firewall server 2. The worldwide data communication network, the Internet, is identified by the reference 10. The firewall computer 2 can be connected to the Internet 10 by means of a connection line 7, e.g. ISDN. The automation system 5 can be connected to the Internet via an Internet server 4, which acts as a C&M server 4 for the automation system 5 and which, for example, has the Internet address dcomserver.khe.siemens.de/, by means of a connection line 8 and in each case a second firewall computer 3. The second firewall 9 b encloses the intranet 32 associated with the firewall computer 3. The firewall computer 3 is visible on the Internet 10, for example, under the Internet address khe.siemens.de. The data connection 6, 7, 8 between the client 1 and the server 4 is shown in FIG. 1 in the form of two partial channels for better representation and clarification of the appropriate transmission direction in the communication between client 1 and server 4 and vice versa. These partial channels include a first transmission channel 6 a, 7 a, 8 a, which symbolizes the communication direction from the client 1 to the server 4 and a second transmission channel 6 b, 7 b, 8 b, which symbolizes the communication direction from the server 4 to the client 1. Physically, the two partial channels shown are a single transmission channel, i.e. the same physical transmission channel is used for a response from the server 4 to an associated request from the client 1 to the server 4.

[0031] In the following, by way of example, the setting-up of a bidirectional transmit and receive connection, which is mutually independent with respect to time, between the client 1 and the C&M server 4 via the Internet 10 is to be explained with reference to the setting-up of a connection between the client 1 and the C&M server 4. In addition to this, an asynchronous method is used, which makes it possible for the C&M server 4 to be able to transmit data to the client 1 independently of actions of the client 1, which itself does not have to be visible on the Internet 10, i.e. does not have its own valid Internet address. In addition to this, the client 1 sends a first query, a so-called request, via the Internet 10 to the C&M server 4 via the first transmission channel 6 a, 7 a, 8 a, to which the C&M server 4 responds with a so-called response via the second transmission channel 6 b, 7 b, 8 b. In order to prevent a transient interruption of the response and thus a break in the data connection 6, 7, 8, the duration of the response is extended to be “infinitely” long. In addition to this, the system is informed, for example, that further data are still to be sent. By this means, a permanently open data connection 6, 7, 8 results, via which the C&M server 4 and thus the automation system 5 can asynchronously transmit data to the client 1, and thus to the C&M system 1, at any time and independently of actions of the client 1. In order to keep the data connection 6, 7, 8, permanently open, it is also possible, for example, to transmit apparent data at regular intervals, advantageously every 25-35 sec. from the server 4 to the client 1.

[0032] Furthermore, a “normal” communication via the Internet 10 can take place between the client 1 and the C&M server 4 regardless of this permanently open data connection 6, 7, 8, i.e. the client 1 transmits a request to the C&M server 4 via a new transmission channel and the C&M server 4 replies to this request with an appropriate response via this transmission channel. When the data has been transmitted, the new transmission channel is closed once more. In this way, the client 1 as well as the C&M server 4 can bidirectionally transmit and receive data mutually independently with respect to time. A transport protocol, in particular an Internet transport protocol, is used for controlling the data transmission. Advantageously, the Hypertext Transport Protocol (HTTP) is used as the transport protocol.

[0033]FIG. 2 shows the time-related process of the establishing 26 of a permanently open data connection 6, 7, 8 between a client 1 and a C&M server 4, to which an automation system 5 which is, for example, referred to as PLC (=programmable logic controller) is connected. The illustration uses the UML notation (unified modeling language). Furthermore, FIG. 2 shows the bidirectional communication, which can be initiated by client 1 and C&M server 4 after establishing the data connection mutually independently with respect to time. The time-related process of establishing the data connection is as follows: the client 1 places a request 11 on the server 4, which replies to this with a response 12, whereby this data connection is not cleared. In addition to this, the client 1 is informed, for example, that further data are still to be sent, as a result of which this data connection is kept permanently open. In order to keep the data connection permanently open, it is also possible, for example, to transmit apparent data at regular intervals, in particular every 25-35 sec., from the server 4 to the client 1 if no user data can be transmitted.

[0034] By this means, the server 4 as well as the automation system 5 connected to the server 4 can transmit data to the client 1 at any time independently of the client 1. After the response 12 of the server 4, the client 1 sends a new request 13 to the server 4. In addition to this, a new data connection is set up. The server 4 in turn replies with a response 14 (=synchronous behavior). This data connection is closed once more when data transmission is complete. If required, the client 1 transmits a request 15, for example, via the server 4, which is forwarded to the PLC 5 as request 28. The PLC transmits a response 29 back to the server 4, which forwards it to the client 1 with a response 17 (=synchronous behavior). This data connection is likewise closed once more when the data transmission is complete.

[0035] Independently of and in parallel with this, the server 4 can send a message to the client 1 via the permanently open data connection 12, e.g. a response to an event 30 in the PLC 5, without the client 1 previously having sent a request (=asynchronous callback 16). This would not be possible with a “normal” HTTP connection. In particular, this asynchronous callback 16 is also possible in time between a request 15 and a not yet initiated response 17.

[0036] Overall, this results in a user data communication 27 via the Internet in both directions, which can be initiated from both sides and is mutually independent with respect to time. In this way, it is also possible to use existing communication paths of the Internet in the usual manner as an HMI interface (Human Machine Interface) in the field of automation technology for control and monitoring purposes. By way of example, the Siemens control and monitoring system WinCC may be considered as an advantageous application. The system and method according to the invention enables DCOM tasks to be transmitted from the client 1 to the Internet server 4. The special feature of this is that the method enables the Internet server 4 to be able to transmit DCOM events to its client 1 without the latter having a “real” address, i.e. an address visible on the Internet. The client 1 therefore does not need to be visible on the Internet. Also, it does not need to have an Internet Information Server (IIS) installed. No additional costs are therefore necessary on the client side, as Internet browsers such as, for example, Internet Explorer from the company Microsoft or Netscape Communicator from the company Netscape are available everywhere. No special solutions are therefore required for an exchange of data between automation system and C&M user, for instance for alarm purposes.

[0037]FIG. 3a shows a schematic outline diagram for an HTTP request-response model. After transmitting the HTTP response, the data channel is closed and the server can only transmit data to the client on receipt of a new request (from the client).

[0038]FIG. 3b shows a schematic outline diagram for a COM callback scenario. COM offers the possibility of transmitting data asynchronously from the COM server to the COM client. This technique is commonly known as callback. This technique is used, for example, in automation in order to report back alarms etc. Overall, this therefore results in a COM automatic marshaller being available for COM communication on the Internet.

[0039]FIG. 4 shows an outline diagram for two data networks that can be coupled via the Internet. An automatic marshaller proxy on the client machine behaves like the COM server to be extended and accepts all calls. These calls are converted by the proxy into a [lacuna] for “bidirectional communication on the Internet (bi-com for short)” and transmitted to the server in this form. At the same time, the COM clients could run on various machines, which then connect to the automatic marshaller proxy via DCOM in the LAN.

[0040] An automatic marshaller stub accepts the data on the server side and, in the case of the “real” COM servers, executes the call. The same method, the via bi-com both directions of data are possible at all times, is used for callbacks. This means that, above the communication layer, the (COM) communication is symmetrical even though it is based on an asymmetrical communications protocol (HTTP).

[0041] In summary, the invention thus relates to a system and to a method for transmitting data via data networks, especially the Internet, in particular data for controlling and monitoring an automation system 5. A method or a system is proposed for a bidirectional user data connection, even behind firewalls, via the Internet in both directions, including from a client 1, which is not visible as a server on the Internet, in which a first connection request for setting up a first transmission channel 6 a, 7 a, 8 a is transmitted to a C&M server 4 of an automation system 5 from a first data processing device of a client 1, in particular from a control and monitoring system 1, via a data connection 6, 7, 8, in particular an Internet connection. A response to this takes place via a second transmission channel 6 b, 7 b, 8 b. A usage duration of the data connection 6, 7, 8, which is unlimited in time, is ensured by transmitting apparent data, to maintain the data connection 6, 7, 8, for example, even when user data are not available or by transmitting information to the client 1 which informs the client 1 that a transmission of user data is still intended. This results in a permanently open data connection 6, 7, 8 via which the C&M server 4 and thus the automation system 5 can transmit data asynchronously to the client 1 and thus to the C&M system 1 at any time and independently of actions of the client 1. 

1. A method for transmitting data via data networks, especially the Internet (10), in which a first connection request for setting up at least one first transmission channel (6 a, 7 a, 8 a) is transmitted to a server (4) from a client (1) via a data connection (6, 7, 8), at least one data connection (6, 7, 8) being permanently open, which is provided at any time for the transmission of data from the server (4) to the client (1), independently of actions of the client (1), via a COM automatic marshaller, which is incorporated into the communications chain between client (1) and server.
 2. The method as claimed in claim 1, characterized in that the automatic marshaller interprets a call to be carried out and transmits the data relevant to the call to the server, which then carries out the actual call.
 3. The method as claimed in one of claims 1 or 2, characterized in that, to permanently maintain a data connection (6, 7, 8) between server (4) and client (1), apparent data are transmitted even when user data are not available.
 4. The method as claimed in claims 1 to 3, characterized in that apparent data are transmitted from the server (4) to the client (1).
 5. The method as claimed in one of the preceding claims, characterized in that when user data are not available, apparent data are transmitted from the server (4) to the client (1) every 25-35 sec.
 6. The method as claimed in one of the preceding claims, characterized in that, in order to permanently maintain a data connection (6, 7, 8), the server (4) transmits information to the client (1), which informs the client (1) that a transmission of data is intended.
 7. The method as claimed in one of the preceding claims, characterized in that, in order to permanently maintain a data connection (6, 7, 8), by means of which quantities of data up to a defined size are transmitted from the server (4) to the client (1), a request for a new connection demand is transmitted from the server (4) to the client (1) before the defined quantity of data is reached and, after this, a new request for a connection for setting up at least one new transmission channel is transmitted from the client (1) to the server (4).
 8. The method as claimed in one of the preceding claims, characterized in that the quantity of data to be transmitted via a transmission channel has a size of 15-25 MB.
 9. The method as claimed in one of the preceding claims, characterized in that a transport protocol, in particular an Internet transport protocol, is provided for controlling the data transmission.
 10. The method as claimed in one of the preceding claims, characterized in that a Hypertext Transport Protocol is used as a transport protocol.
 11. The method as claimed in one of the preceding claims, characterized in that the method for controlling and monitoring an automation system (5) is provided via at least one data network, in particular via the Internet.
 12. The method as claimed in one of the preceding claims, characterized in that the client (1) is not visible on the Internet (10).
 13. The method as claimed in one of claims 1 to 10, characterized in that the client (1) does not have an Internet Information Server installed.
 14. The method as claimed in one of the preceding claims, characterized in that the control and monitoring system (1) of the client (1) initiates the provision of at least one transmission channel (6 a, 7 a, 8 a) as a distributed object, in particular as a DCOM object, and in that the connection to the automation system (5) is set up via a DCOM server (4).
 15. A system for transmitting data via data networks, especially the Internet (10), with at least one data processing device (1) of a client (1) that can be connected to a data network, the first data processing device (1) being provided for setting up at least one data connection (6, 7, 8) in the form of a first transmission channel (6 a, 7 a, 8 a) to a server (4), at least one data connection (6, 7, 8) being permanently open, which is provided for the transmission of data from the server (4) to the client (1) at any time, independently of actions of the client (1), via a COM automatic marshaller, which is incorporated into the communications chain between client (1) and server.
 16. The method as claimed in claim 15, characterized in that the automatic marshaller interprets a call to be carried out and transmits the data relevant to the call to the server, which then carries out the actual call.
 17. The system as claimed in one of claims 15 or 16, characterized in that the system for permanently maintaining a data connection (6, 7, 8) between server (4) and client (1) has means for transmitting apparent data even when user data are not available.
 18. The system as claimed in one of claims 15 or 17, characterized in that the system for permanently maintaining a data connection (6, 7, 8) has means for transmitting information from the server (4) to the client (1), which informs the client (1) that a transmission of data is intended.
 19. The system as claimed in one of claims 15 to 18, characterized in that the system for permanently maintaining a data connection (6, 7, 8), by means of which quantities of data up to a defined size are transmitted from the server (4) to the client (1), has means that transmit a request for a new connection demand from the server (4) to the client (1) before the defined quantity of data is reached and, after this, cause the client (1) to transmit a new request for a connection for setting up at least one new transmission channel to the server (4).
 20. The system as claimed in one of claims 15 to 19, characterized in that the system uses a transport protocol, in particular an Internet transport protocol, as a means for controlling the data transmission.
 21. The system as claimed in one of claims 15 to 20, characterized in that the system uses a Hypertext Transport Protocol as a transport protocol as a means for controlling the data transmission.
 22. The system as claimed in one of claims 15 to 21, characterized in that the system for controlling and monitoring an automation system (5) is provided via at least one data network, in particular via the Internet.
 23. The system as claimed in one of claims 15 to 22, characterized in that the control and monitoring system (1) of the client (1) initiates the provision of at least one transmission channel (6 a, 7 a, 8 a) as a distributed object, in particular as a DCOM object, and in that the connection to the automation system (5) is set up via a DCOM server (4). 